Skip to main content
ClaudeWave

The security layer of an end-to-end-encrypted app, as packages: sign-in, key handling, access control and revocation. The server stores only what it cannot read.

MCP ServersRegistry oficial0 estrellas0 forks● JavaScriptNOASSERTIONActualizado today
ClaudeWave Trust Score
80/100
✓ Trusted
Passed
  • ✓Actively maintained (<30d)
  • ✓Clear description
  • ✓Topics declared
  • ✓Documented (README)
Flags
  • !Licence file present but not machine-readable
Last scanned: 9/28/2026
Install in Claude Code / Claude Desktop
Method: Manual
Claude Code CLI
git clone https://github.com/microtoll/engine
claude_desktop_config.json (Claude Desktop)
{
  "mcpServers": {
    "engine": {
      "command": "node",
      "args": ["/path/to/engine/dist/index.js"]
    }
  }
}
1. Run the command above in your terminal (Claude Code), or paste the JSON config into claude_desktop_config.json (Claude Desktop).
2. Replace any <placeholder> values with your API keys or paths.
3. Restart Claude. The MCP server and its tools appear automatically.
💡 Clone https://github.com/microtoll/engine and follow its README for install instructions.
Casos de uso

Resumen de MCP Servers

# Microtoll Engine

The security layer of an end-to-end-encrypted app, as packages that give any
app the four things AI-generated apps get wrong: sign-in, key handling, access
control and revocation. The server stores only what it cannot read.

**Status:** 0.1.0, the first release (2026-09-27). Pre-1.0: function names
and options may change between minor versions; the bytes it writes never
will. See `docs/pages/formats-and-stability.md` and `DECISIONS.md`.

| Package | Milestone | Licence | What it does |
|---|---|---|---|
| `@microtoll/crypto-core` | M1 | Apache-2.0 | primitives, labelled key derivation, versioned wire formats, hybrid post-quantum seal |
| `@microtoll/identity` | M2 | Apache-2.0 | root key, unlock methods, sessions, restore, deletion |
| `@microtoll/access` | M3 | Apache-2.0 | sealed sharing, capabilities, links, removal and rotation, two-tier disclosure |
| `@microtoll/blind-store` | M4 | AGPL-3.0-only | the reference server library and its Postgres schema |
| `@microtoll/mailbox` | M3b (in M5) | Apache-2.0 | pairwise unlinkable delivery: direct invitations under labels only two people can compute |
| `@microtoll/mcp` | M5 | Apache-2.0 | docs search and project scaffolding for AI coding agents (Model Context Protocol) |

Each package carries its own `LICENSE`. Documentation is CC-BY-4.0.

## Documents

- `microtoll-build-plan.md` — the plan and the non-negotiables.
- `DECISIONS.md` — the founder's decisions.
- `THREATMODEL.md` — per-package threat models and honest limits.
- `docs/` — the source of microtoll.dev, `llms.txt` and the MCP snapshot
  (`npm run docs`); `docs/DESIGN-M5.md`, `docs/DESIGN-M6-pqc-scan.md` and
  `docs/LAUNCH.md`.
- Each package's `FORMATS.md` or `DESIGN.md` — its formats, byte for byte.
- `SECURITY.md`, `CONTRIBUTING.md` — how to report a weakness; the rules and
  the sign-off.

## Examples and deployment

- `examples/notes-app` — end-to-end-encrypted notes with sharing and
  revocation on the reference server: `docker compose up`, then
  <http://localhost:8088>.
- `examples/identity-demo` — the identity package on a page against its
  in-process server stand-in.
- `deploy/` — the hardened Compose file, the Dockerfile and the Nginx sample
  for `blind-store`.

## How it was built, and support

The engine was written with Claude Code (Anthropic's coding agent) from a
security design the founder wrote and decided, milestone by milestone; the
founder read and accepted every change, and every decision with its reasons
is in `DECISIONS.md`. The checks are the ones you can run: the published
test vectors (RFC 5869, RFC 8032, RFC 5903, RFC 7914, NIST CAVP, the X-Wing
draft) through the public API, the frozen fixtures, the adversarial suite,
and the threat model written down in `THREATMODEL.md`. An outside security
audit is the next step, and the NGI/Restack route to fund it is in the plan.

The packages are free and stay free. If they save you work, you can
[sponsor the work on GitHub](https://github.com/sponsors/sealwright).

## Working on it

```
npm install          # TypeScript for the declaration check; ws and pg for blind-store
npm run check        # typecheck + tests (Node >= 24)
npm run db:up        # a throwaway Postgres 17 in Docker for the database-backed suites
```

Tests use Node's built-in `node:test`. The browser packages have no runtime
dependencies; `blind-store` has exactly `ws` and `pg`. The suites that need
a database (blind-store's schema, protocol, live and fixture checks, and the
notes example) run when `npm run db:up` has started one — or a Postgres
answers at `BLIND_STORE_TEST_DB` — and skip with one line otherwise; CI runs
them.
access-controlcryptographyend-to-end-encryptionjavascriptkey-managementmcp-serverpasskeyspost-quantumprivacyzero-dependencies

Lo que la gente pregunta sobre engine

¿Qué es microtoll/engine?

+

microtoll/engine es mcp servers para el ecosistema de Claude AI. The security layer of an end-to-end-encrypted app, as packages: sign-in, key handling, access control and revocation. The server stores only what it cannot read. Tiene 0 estrellas en GitHub y su última actualización registrada es del 2026-09-27.

¿Cómo se instala engine?

+

Puedes instalar engine clonando el repositorio (https://github.com/microtoll/engine) o siguiendo las instrucciones del README en GitHub. ClaudeWave también te ofrece bloques de instalación rápida en esta misma página.

¿Es seguro usar microtoll/engine?

+

Nuestro agente de seguridad ha analizado microtoll/engine y le ha asignado un Trust Score de 80/100 (tier: Trusted). Revisa el desglose completo de comprobaciones superadas y flags en esta página.

¿Quién mantiene microtoll/engine?

+

microtoll/engine es mantenido por microtoll. La última actividad registrada en GitHub es del 2026-09-27, con 0 issues abiertos.

¿Hay alternativas a engine?

+

Sí. En ClaudeWave puedes explorar mcp servers similares en /categories/mcp, ordenados por popularidad o actividad reciente.

Despliega engine en tu cloud

Lleva este repo a producción en minutos. Cada plataforma genera su propio entorno con variables de entorno editables.

¿Mantienes este repo? Añade un badge a tu README

Pega el badge en tu README de GitHub para mostrar que está auditado por ClaudeWave. Cada badge enlaza de vuelta a esta página y muestra el Trust Score actual.

Featured on ClaudeWave: microtoll/engine
[![Featured on ClaudeWave](https://claudewave.com/api/badge/microtoll-engine)](https://claudewave.com/repo/microtoll-engine)
<a href="https://claudewave.com/repo/microtoll-engine"><img src="https://claudewave.com/api/badge/microtoll-engine" alt="Featured on ClaudeWave: microtoll/engine" width="320" height="64" /></a>

Más MCP Servers

Alternativas a engine